Category: CyberSecurityNews

Microsoft Exchange Server Vulnerability Enables Privelege Escalation
07
Aug
2025

Microsoft Exchange Server Vulnerability Enables Privelege Escalation

A critical security vulnerability in Microsoft Exchange Server hybrid deployments has been disclosed, allowing attackers with on-premises administrative access to…

Sophisticated DevilsTongue Windows Spyware Tracking Users Globally
06
Aug
2025

Sophisticated DevilsTongue Windows Spyware Tracking Users Globally

The emergence of DevilsTongue marks a significant escalation in mercenary spyware capabilities, leveraging advanced Windows-based techniques to infiltrate high-value targets…

Akira and Lynx Ransomware Attacking Managed Service Providers With Stolen Login Credential and Vulnerabilities
06
Aug
2025

Akira and Lynx Ransomware Attacking Managed Service Providers With Stolen Login Credential and Vulnerabilities

Two sophisticated ransomware operations have emerged as significant threats to managed service providers (MSPs) and small businesses, with the Akira…

Global Jewellery Brand Pandora Suffers Hacked
06
Aug
2025

Global Jewellery Brand Pandora Suffers Hacked

Danish jewellery giant Pandora has disclosed a significant data breach that compromised customer information through a third-party vendor platform.  The…

Lazarus Hackers Trick Users Into Believing Their Camera or Microphone is Blocked to Deliver PyLangGhost RAT
06
Aug
2025

Lazarus Hackers Trick Users Into Believing Their Camera or Microphone is Blocked to Deliver PyLangGhost RAT

Cybersecurity researchers have observed a new social engineering campaign attributed to North Korea’s Lazarus Group in recent weeks that leverages…

Google's Salesforce Instances Hacked in Ongoing Attack
06
Aug
2025

Google’s Salesforce Instances Hacked in Ongoing Attack

Google has confirmed that one of its corporate Salesforce instances was compromised in June by the threat group tracked as…

Mustang Panda Attacking Windows Users With ToneShell Malware Mimic as Google Chrome
06
Aug
2025

Mustang Panda Attacking Windows Users With ToneShell Malware Mimic as Google Chrome

A sophisticated new cyber campaign has emerged targeting Windows users through a deceptive malware variant known as ToneShell, which masquerades…

Threat Actors Weaponize Smart Contracts to Drain User Crypto Wallets of More Than $900k
06
Aug
2025

Threat Actors Weaponize Smart Contracts to Drain User Crypto Wallets of More Than $900k

In a sophisticated campaign uncovered in early 2024, cybercriminals have begun distributing malicious Ethereum smart contracts masquerading as lucrative trading…

UAC-0099 Hackers Weaponizing HTA Files to Deliver MATCHBOIL Loader Malware
06
Aug
2025

UAC-0099 Hackers Weaponizing HTA Files to Deliver MATCHBOIL Loader Malware

The Ukrainian threat intelligence group UAC-0099 has significantly evolved its cyber warfare capabilities, deploying a sophisticated new malware toolkit targeting…

Threat Actors Leveraging GenAI for Phishing Attacks Impersonating Government Websites
06
Aug
2025

Threat Actors Leveraging GenAI for Phishing Attacks Impersonating Government Websites

Cybercriminals have escalated their phishing operations by incorporating generative artificial intelligence tools to create sophisticated replicas of government websites, marking…

Rockwell Arena Simulation Vulnerabilities Let Attackers Execute Malicious Code Remotely
06
Aug
2025

Rockwell Arena Simulation Vulnerabilities Let Attackers Execute Malicious Code Remotely

Rockwell Automation has disclosed three critical memory corruption vulnerabilities in its Arena® Simulation software that could allow threat actors to…

WhatsApp's New Security Feature Allows Users to Pause, Question, and Verify Malicious Messages
06
Aug
2025

WhatsApp’s New Security Feature Allows Users to Pause, Question, and Verify Malicious Messages

WhatsApp has unveiled a comprehensive security enhancement that implements a “pause, question, and verify” protocol to protect users from sophisticated…